Event-based attack detection
US8839435B1 · kind B1 · utility
Assignee
Inventor
Key dates
| Filing date | Nov 4, 2011 |
| Grant date | Sep 16, 2014 |
| Priority date | — |
| Expiry date | May 2, 2032 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2221/2115
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Event-based attack detection is described. In some implementations, an attack on a computing device can be detected by identifying unusual events, or unusual sequences of events, that occurred on the computing device. A computing device can log events that occur on the computing device. In some implementations, the unusualness of an event, or sequence of events, on the computing device can be determined based on a comparison of events logged by the computing device and events logged by other computing devices. Other implementations are described.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.